AI Governance & Compliance Manager
Role details
Job location
Tech stack
Job description
The Manager, AI Governance & Policy defines and enforces the AI governance frameworks that ensure safe, responsible, and compliant AI usage across Cengage. You will translate the enterprise AI strategy into actionable policies, monitor compliance across use cases, and serve as the operational owner of Cengage's AI governance posture.
This role requires rare judgment: the ability to enable speed-of-business AI adoption while maintaining rigorous guardrails. The ideal candidate understands both the technical substance of modern AI and the organizational dynamics of policy enforcement, and can engage credibly with Legal, Security, Privacy, and Product leadership., AI Policy Development & Enforcement
- Develop and maintain AI policies, standards, and acceptable use frameworks
- Operationalize policies through tooling, training, and monitoring systems
- Monitor compliance across AI use cases, platforms, and user populations
- Conduct periodic policy reviews and updates as the AI landscape evolves
- Serve as the point of contact for AI policy questions from the business
Risk, Incident & Audit Management
- Track AI-related risk incidents, investigate root causes, and drive remediation
- Manage the AI incident response process for issues such as data exposure or misuse
- Ensure audit readiness across AI initiatives and partner with Internal Audit
- Oversee data usage governance for AI including training data and retrieval
- Maintain documentation, evidence, and attestation for all AI controls
Stakeholder Engagement & Reporting
- Partner with Legal, Privacy, Security, and Product on cross-functional governance decisions
- Deliver periodic governance reporting to the VP and executive team
- Maintain metrics on policy compliance rates, incident frequency, and governance coverage
- Lead the AI governance committee and associated operating rhythm
- Serve as an escalation point for novel or ambiguous governance situations, * Governance: Policy management platforms, GRC tools (ServiceNow GRC, Archer, LogicGate)
- AI Platforms: ChatGPT Enterprise, Claude, AWS Bedrock, Azure OpenAI
- Monitoring: Cloud security posture tools, DLP platforms, audit logging
- Documentation: Confluence, Notion, SharePoint
- Collaboration: Slack, Microsoft Teams, Google Workspace
- Analytics: Tableau, Power BI, compliance dashboards
Key Competencies
- Policy Craft - writes clear, enforceable, business-friendly policies
- Technical Fluency - credible with engineers and product teams on AI technical substance
- Risk Judgment - calibrates response proportionally to actual risk
- Stakeholder Fluency - works effectively with Legal, Security, Product, and Executive
- Operational Rigor - runs governance processes on cadence with documentation discipline
- Discretion - handles sensitive situations with judgment and confidentiality
What We Offer
- Opportunity to shape AI at scale across a global learning company
- Direct impact on business outcomes, product, and workforce productivity
- Access to cutting-edge AI tools, platforms, and technologies
- Collaborative team environment focused on innovation and continuous improvement
Requirements
Do you have experience in Stakeholder relationship building?, Do you have a Bachelor's degree?, * Bachelor's degree in Computer Science, Law, Public Policy, Information Systems, or related field
- 5+ years of experience in governance, risk, compliance, or security roles
- Demonstrated experience developing and enforcing enterprise technology policies
- Working knowledge of modern AI technologies and their risk surfaces
- Strong understanding of data privacy, security, and regulatory frameworks
- Excellent written communication skills for policies, standards, and executive reports
- Strong stakeholder management across Legal, Security, Product, and Executive audiences
- Judgment and discretion handling sensitive risk, incident, and audit situations, * Experience with emerging AI regulation (EU AI Act, NIST AI RMF, state-level regulations)
- Background in EdTech with familiarity with FERPA, COPPA, and education data privacy
- Certifications in governance or security (CISSP, CISA, CIPP, CRISC)
- Experience with vendor risk management and third-party AI approvals
- Background working with Internal Audit, Legal, and regulatory bodies
- Familiarity with AI incident response and red-team practices
Benefits & conditions
3.63.6 out of 5 stars United States $117,100 - $165,000 a year - Full-time, At Cengage Group, we take great pride in our commitment to providing a comprehensive and rewarding Total Rewards package designed to support and empower our employees. Click here to learn more about our Total Rewards Philosophy.
The full base pay range has been provided for this position. Individual base pay will vary based on work schedule, qualifications, experience, internal equity, and geographic location. Sales roles often incorporate a significant incentive compensation program beyond this base pay range.
In this position, you will be eligible to participate in the company's discretionary incentive bonus program. This position's bonus target amount, which is not guaranteed and is dependent on individual performance and overall company results among other factors, is provided below.
15% Annual: Individual Target
$117,100.00 - $165,000.00 USD